nixos-configs/flake.nix

181 lines
5.5 KiB
Nix
Raw Permalink Normal View History

2021-07-02 01:47:30 +02:00
{
inputs = {
nixpkgs.url = "github:nixos/nixpkgs/nixos-unstable";
2022-09-15 22:01:56 +02:00
nixpkgs-stable.url = "github:nixos/nixpkgs/nixos-22.05";
2021-07-02 01:47:30 +02:00
home-manager.url = "github:nix-community/home-manager";
};
2022-09-15 22:01:56 +02:00
outputs = { self, home-manager, nixpkgs, nixpkgs-stable }: {
2021-07-02 01:47:30 +02:00
nixosConfigurations.nixos-desktop = nixpkgs.lib.nixosSystem {
system = "x86_64-linux";
specialArgs = { inherit nixpkgs; };
2021-07-02 01:47:30 +02:00
modules =
[
home-manager.nixosModules.home-manager
2021-07-16 21:09:58 +02:00
./hardware/desktop.nix
./profiles/base.nix
./users
2021-08-23 04:39:50 +02:00
(
{
networking.hostName = "nixos-desktop";
# Allow to externally control MPD
networking.firewall.allowedTCPPorts = [ 6600 ];
2021-07-02 01:47:30 +02:00
2021-08-23 04:39:50 +02:00
nix.registry.nixpkgs.flake = nixpkgs;
2021-07-16 21:09:58 +02:00
2021-08-23 04:39:50 +02:00
system.stateVersion = "19.09";
}
)
2021-07-02 01:47:30 +02:00
];
};
nixosConfigurations.froidmpa-laptop = nixpkgs.lib.nixosSystem {
system = "x86_64-linux";
specialArgs = { inherit nixpkgs; };
2021-07-02 01:47:30 +02:00
modules =
[
home-manager.nixosModules.home-manager
./hardware/clevo-nl51ru.nix
./profiles/base.nix
./users
2021-08-23 04:39:50 +02:00
(
{
networking.hostName = "froidmpa-laptop";
2021-07-02 01:47:30 +02:00
2021-08-23 04:39:50 +02:00
nix.registry.nixpkgs.flake = nixpkgs;
2021-08-23 04:39:50 +02:00
home-manager.users.froidmpa = { pkgs, config, ... }: {
services.network-manager-applet.enable = true;
services.blueman-applet.enable = true;
services.grobi = {
enable = true;
executeAfter = [ "${pkgs.systemd}/bin/systemctl --user restart stalonetray" "${pkgs.feh}/bin/feh --bg-fill ~/.wallpaper.png" ];
rules = [
{
2022-09-01 00:28:15 +02:00
name = "External HDMI";
2021-08-23 04:39:50 +02:00
outputs_connected = [ "HDMI-1" ];
configure_single = "HDMI-1";
primary = true;
atomic = true;
}
{
2022-09-01 00:28:15 +02:00
name = "Primary";
configure_single = "eDP";
2021-08-23 04:39:50 +02:00
}
];
};
};
2021-08-23 04:39:50 +02:00
system.stateVersion = "21.05";
}
)
2021-07-02 01:47:30 +02:00
];
};
2022-09-05 01:37:52 +02:00
nixosConfigurations.rpi3 = nixpkgs.lib.nixosSystem {
system = "aarch64-linux";
modules =
[
(
{ pkgs, ... }: {
networking.hostName = "rpi3";
nix.registry.nixpkgs.flake = nixpkgs;
boot.loader.grub.enable = false;
boot.loader.generic-extlinux-compatible.enable = true;
boot.kernelParams = [ "cma=256M" ];
fileSystems."/" =
{
device = "/dev/disk/by-label/NIXOS_SD";
fsType = "ext4";
};
swapDevices = [{ device = "/swapfile"; size = 1024; }];
services.openssh.enable = true;
users.users.root.openssh.authorizedKeys.keyFiles = [
./ssh_keys/phfroidmont-desktop.pub
./ssh_keys/phfroidmont-laptop.pub
];
services.adguardhome = {
enable = true;
2022-09-05 19:26:33 +02:00
host = "0.0.0.0";
port = 80;
openFirewall = true;
2022-09-13 22:26:02 +02:00
mutableSettings = false;
2022-09-05 19:26:33 +02:00
settings = {
auth_attempts = 5;
block_auth_min = 15;
dns = {
bind_host = "0.0.0.0";
port = 53;
statistics_interval = 90;
querylog_enabled = true;
querylog_interval = 90;
2022-09-13 22:26:02 +02:00
upstream_dns = [
"tls://doh.mullvad.net"
"[/lan/]192.168.1.1"
"[//]192.168.1.1"
];
local_ptr_upstreams = [ "192.168.1.1" ];
use_private_ptr_resolvers = true;
resolve_clients = true;
2022-09-05 19:26:33 +02:00
bootstrap_dns = "9.9.9.10";
2022-09-13 22:26:02 +02:00
rewrites = [
{
domain = "rpi3";
answer = "192.168.1.2";
}
{
domain = "rpi3.lan";
answer = "192.168.1.2";
}
];
2022-09-05 19:26:33 +02:00
};
};
2022-09-05 01:37:52 +02:00
};
2022-09-05 19:26:33 +02:00
networking.firewall.allowedTCPPorts = [ 53 ];
2022-09-05 01:37:52 +02:00
networking.firewall.allowedUDPPorts = [ 53 ];
environment.systemPackages = with pkgs; [
vim
htop
];
system.stateVersion = "22.05";
}
)
];
};
2022-09-15 22:01:56 +02:00
nixosConfigurations.rpi2 = nixpkgs-stable.lib.nixosSystem {
system = "armv7l-linux";
modules = [
"${nixpkgs-stable}/nixos/modules/installer/sd-card/sd-image-raspberrypi.nix"
{
networking.hostName = "rpi2";
nixpkgs.config.allowUnsupportedSystem = true;
nixpkgs.crossSystem.system = "armv7l-linux";
services.openssh.enable = true;
users.users.root.openssh.authorizedKeys.keyFiles = [
./ssh_keys/phfroidmont-desktop.pub
./ssh_keys/phfroidmont-laptop.pub
];
system.stateVersion = "22.05";
}
];
};
images.rpi2 = self.nixosConfigurations.rpi2.config.system.build.sdImage;
2021-07-02 01:47:30 +02:00
};
}